Aggregator
Interlock ransomware gang started leaking data allegedly stolen from leading kidney dialysis firm DaVita
Spring Security Vulnerability Exposes Valid Usernames to Attackers
A newly identified security vulnerability, CVE-2025-22234, has exposed a critical weakness in the widely-used Spring Security framework. According to the HeroDevs report, affecting several versions of the spring-security-crypto package, this flaw makes it possible for attackers to discern valid usernames through observable differences in login response times—an avenue for so-called “timing attacks.” Spring Security is […]
The post Spring Security Vulnerability Exposes Valid Usernames to Attackers appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Гид по курсам сетевой криминалистики и анализу трафика
一种肉食毛虫会披着猎物残骸在蛛网上游弋
ИИ от Microsoft объявил Adobe спамером: конкуренция или случайность
CVE-2025-46613 | OpenPLC up to 64f9c11263229b019091e3c5a1896c184e0661a6 server.cpp handleConnections race condition (Issue 273)
CVE-2025-46617 | Quantum StorNext up to 7.2.3 Web GUI API hard-coded credentials
CVE-2025-0671 | Icegram Express Plugin up to 5.7.49 on WordPress Template Setting cross site scripting
CVE-2025-3511 | Mitsubishi Electric CC-Link IE TSN Remote IO Module improper validation of specified quantity in input
CVE-2025-46616 | Quantum StorNext up to 7.2.3 Web GUI API unrestricted upload
CVE-2025-2580 | Bit Contact Form Form Plugin up to 2.18.3 on WordPress SVG File Upload cross site scripting
CVE-2025-3861 | Prevent Direct Access Plugin up to 2.8.8.2 on WordPress pda_lite_custom_permission_check improper authorization
DeepMind 发布 Lyria 2 音乐生成模型
Russian VPS Servers With RDP and Proxy Servers Enable North Korean Cybercrime Operations
Trend Research has uncovered a sophisticated network of cybercrime operations linked to North Korea, heavily utilizing Russian internet infrastructure. Specifically, IP address ranges in the towns of Khasan and Khabarovsk, Russia, assigned to organizations under TransTelecom (ASN AS20485), are pivotal in these activities. Khasan, just a mile from the North Korea-Russia border and connected via […]
The post Russian VPS Servers With RDP and Proxy Servers Enable North Korean Cybercrime Operations appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.